Vulnerability Details CVE-2017-1601
IBM Security Guardium 10.0, 10.0.1, and 10.1 through 10.1.4 Database Activity Monitor does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 132624.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.4%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2017-1601
-
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:10.0
-
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:10.0.1
-
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:10.1
-
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:10.1.2
-
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:10.1.3
-
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:10.1.4